2026

Cisco FMC static credentials exploited by attackers (CVE-2026-20316)

Cisco FMC static credentials exploited by attackers (CVE-2026-20316) 2026-07-30 at 13:44 By Zeljka Zorz A static credentials vulnerability (CVE-2026-20316) in Cisco Secure Firewall Management Center (FMC), a platform for centrally managing multiple Cisco Secure Firewall devices across a network, is being leveraged by attackers, CISA warned. Two FMC flaws, one indicator of compromise CVE-2026-20316, reported […]

Cisco FMC static credentials exploited by attackers (CVE-2026-20316) Read More »

Dropzone AI turns threat hunting into a routine SOC operation

Dropzone AI turns threat hunting into a routine SOC operation 2026-07-30 at 13:43 By Industry News Dropzone AI has announced the general availability of AI Threat Hunter, its proactive threat hunting agent. The tool enables security teams to run structured hunt packs across their environments to identify hidden threats, emerging risks, and security coverage gaps

Dropzone AI turns threat hunting into a routine SOC operation Read More »

PortSwigger introduces Burp AT for agentic AI security testing

PortSwigger introduces Burp AT for agentic AI security testing 2026-07-30 at 13:33 By Industry News PortSwigger has announced the public beta of Burp AT, a new addition to Burp Suite that brings agentic AI to professional penetration testing. Burp AT enables penetration testers to delegate defined investigative tasks to AI agents that use Burp Suite’s

PortSwigger introduces Burp AT for agentic AI security testing Read More »

Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts

Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts 2026-07-30 at 13:33 By South Korean authorities and four security firms have disclosed a state-sponsored campaign that compromised trusted domestic websites. The attackers used those sites to exploit locally installed financial-security software and infect targeted visitors with SIGNBT or COPPERHEDGE backdoors. A compromised

Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts Read More »

SilverFox Targets Japanese Manufacturer with 3-Driver BYOVD Chain and ValleyRAT

SilverFox Targets Japanese Manufacturer with 3-Driver BYOVD Chain and ValleyRAT 2026-07-30 at 13:32 By The Chinese cybercrime group known as Silver Fox has been observed using new drivers as part of bring your own vulnerable driver (BYOVD) attacks targeting a Japanese organization in the industrial manufacturing sector to ultimately deliver ValleyRAT (aka Winos 4.0) for

SilverFox Targets Japanese Manufacturer with 3-Driver BYOVD Chain and ValleyRAT Read More »

Critical Ruflo Flaw Lets Attackers Spawn Rogue AI Swarms 

Critical Ruflo Flaw Lets Attackers Spawn Rogue AI Swarms  2026-07-30 at 12:56 By Ionut Arghire Unauthenticated attackers could send HTTP requests to an exposed endpoint to execute commands inside the MCP bridge container. The post Critical Ruflo Flaw Lets Attackers Spawn Rogue AI Swarms  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

Critical Ruflo Flaw Lets Attackers Spawn Rogue AI Swarms  Read More »

1 in 5 Data Center Assets Are Within Easy Reach of Attackers

1 in 5 Data Center Assets Are Within Easy Reach of Attackers 2026-07-30 at 12:28 By Eduard Kovacs Claroty has analyzed 750,000 cyber-physical systems across some of the world’s largest data center facilities. The post 1 in 5 Data Center Assets Are Within Easy Reach of Attackers appeared first on SecurityWeek. This article is an

1 in 5 Data Center Assets Are Within Easy Reach of Attackers Read More »

Coordinated cyberattack hits more than 30 Minnesota water utilities

Coordinated cyberattack hits more than 30 Minnesota water utilities 2026-07-30 at 11:59 By Sinisa Markovic A coordinated cyberattack on July 26 and 27 hit operational technology (OT) systems at more than 30 community water utilities across Minnesota, prompting an immediate response from Minnesota IT Services (MNIT) to contain the threat. MNIT confirmed the attack in

Coordinated cyberattack hits more than 30 Minnesota water utilities Read More »

Australia sues Telegram over alleged failures to remove terror content

Australia sues Telegram over alleged failures to remove terror content 2026-07-30 at 11:49 By Cointelegraph by Helen Partz Telegram faces Australian court proceedings after eSafety alleged the platform failed to detect and remove extremist material shared by users. This article is an excerpt from Cointelegraph.com News View Original Source

Australia sues Telegram over alleged failures to remove terror content Read More »

Chinese newspaper warns of Bitcoin extortion scam using its name

Chinese newspaper warns of Bitcoin extortion scam using its name 2026-07-30 at 11:47 By Cointelegraph by Yohan Yun China Business Journal says fraudsters impersonated the publication, demanding Bitcoin to suppress purported investigative reports about targeted companies. This article is an excerpt from Cointelegraph.com News View Original Source

Chinese newspaper warns of Bitcoin extortion scam using its name Read More »

FCC Blocks New Foreign-Produced Robots and Power Inverters Over Cyber Risks

FCC Blocks New Foreign-Produced Robots and Power Inverters Over Cyber Risks 2026-07-30 at 11:47 By The Federal Communications Commission (FCC) added foreign-produced mobile robots and networked power inverters to its Covered List on July 28. The move generally prevents new models from receiving the equipment authorization required for import, marketing, or sale in the US.

FCC Blocks New Foreign-Produced Robots and Power Inverters Over Cyber Risks Read More »

Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation

Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation 2026-07-30 at 10:40 By The Russian threat actors recently linked to the exploitation of a now-patched vulnerability in Zimbra have been observed exploiting another vulnerability, this time in Microsoft Outlook Web Access (OWA), to target U.S. and European government entities, as well

Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation Read More »

Cisco Secure FMC Zero-Day Exploited in the Wild

Cisco Secure FMC Zero-Day Exploited in the Wild 2026-07-30 at 09:31 By Eduard Kovacs The vulnerability tracked as CVE-2026-20316 can be exploited by a remote, unauthenticated attacker to log into affected devices.  The post Cisco Secure FMC Zero-Day Exploited in the Wild appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Cisco Secure FMC Zero-Day Exploited in the Wild Read More »

Data breach cost 2026 averaged $4.99 million, AI attacks ran higher

Data breach cost 2026 averaged $4.99 million, AI attacks ran higher 2026-07-30 at 09:15 By Mirko Zorz More than one in four organizations hit by a malicious attack over the past year say AI drove it. Those breaches averaged about $1 million above the malicious attacks that ran without AI. Defenders bought similar technology and

Data breach cost 2026 averaged $4.99 million, AI attacks ran higher Read More »

Amazon Links Debug and Chalk npm Hijack to North Korea’s Sapphire Sleet

Amazon Links Debug and Chalk npm Hijack to North Korea’s Sapphire Sleet 2026-07-30 at 09:05 By Amazon has tied the September 2025 hijack of the npm packages debug and chalk to North Korea. For ten months, the incident sat in the public record as crypto theft: a maintainer phished through a lookalike npm domain and

Amazon Links Debug and Chalk npm Hijack to North Korea’s Sapphire Sleet Read More »

Scroll to Top